CVE-2025-53471 Details
Description
Emerson ValveLink products receive input or data, but does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
A vulnerability exists in Emerson ValveLink products due to improper input validation, allowing the software to process data without ensuring it meets the necessary criteria for safe and correct handling. This issue is present in ValveLink SOLO, DTM, PRM, and SNAP-ON, all versions prior to 14.0.
Users are advised to update to ValveLink 14.0 or later. The update is available on the Emerson website. For more information, refer to the Emerson security notification.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Jul 11, 2025CISA-ADP
Assessed Jul 11, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-20 | Improper Input Validation | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| Emerson ValveLink SOLO | < 14.0 |
CPE
Remediation
| |
| Emerson ValveLink DTM | All versions |
CPE
Remediation
| |
| Emerson ValveLink PRM | All versions |
CPE
Remediation
| |
| Emerson ValveLink SNAP-ON | All versions |
CPE
Remediation
| |
Change History
4 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Jun 4, 2026 | CVE Modified | [email protected] |
| Jul 11, 2025 | New CVE Received | [email protected] |
Volerion